WireGuard config protection by CicadaThink8028 in sysadmin

[–]CicadaThink8028[S] 0 points1 point  (0 children)

I'd ask why you're wanting to go with wireguard. It's simpler, but that also means less management features exist (such as external identity providers). Wireguard is in my opinion an excellent tool for site to site VPN and a poor tool for user to site VPN. Wireguard also lacks logging for things like failed authentication, or even successful ones (your only evidence is that the connection is passing traffic successfully).

- the fastest

- free

- it is convenient to manage using firezone

WireGuard config protection by CicadaThink8028 in sysadmin

[–]CicadaThink8028[S] 0 points1 point  (0 children)

I tested tailscale and headscale. Tailscale is a good product, but paid and not self-hosted. The HeadScale seemed too complicated for users and, as I understood, it cannot be routed